As we informed you a little while ago, a particularly dangerous vulnerability has already been announced that makes two-thirds of Web servers vulnerable to data leakage and credential theft attacks. The targeting mainly concerns high-security services such as e-banking systems, webmail, and encrypted web services.
The “HeartBleed” vulnerability, as it has been called - read details here - allows the leakage of encryption codes, essentially disabling the SSL/TLS encryption protocols that ensure privacy when transferring information over the internet. Examples of encrypted communication include Instant Messaging applications, VPNs, and access to encrypted websites or webmail systems.
The attack leaves absolutely no trace on the server, and allows the leakage of encrypted security keys, usernames and passwords.
[box_warning]
Read more about the weakness and ways to fix it [here]
Additionally, check your website for the possible existence of the vulnerability through the following service:
https://filippo.io/Heartbleed/
[/box_warning]

